1 /* apps/s_socket.c - socket-related functions used by s_client and s_server */
2 /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
5 * This package is an SSL implementation written
6 * by Eric Young (eay@cryptsoft.com).
7 * The implementation was written so as to conform with Netscapes SSL.
9 * This library is free for commercial and non-commercial use as long as
10 * the following conditions are aheared to. The following conditions
11 * apply to all code found in this distribution, be it the RC4, RSA,
12 * lhash, DES, etc., code; not just the SSL code. The SSL documentation
13 * included with this distribution is covered by the same copyright terms
14 * except that the holder is Tim Hudson (tjh@cryptsoft.com).
16 * Copyright remains Eric Young's, and as such any Copyright notices in
17 * the code are not to be removed.
18 * If this package is used in a product, Eric Young should be given attribution
19 * as the author of the parts of the library used.
20 * This can be in the form of a textual message at program startup or
21 * in documentation (online or textual) provided with the package.
23 * Redistribution and use in source and binary forms, with or without
24 * modification, are permitted provided that the following conditions
26 * 1. Redistributions of source code must retain the copyright
27 * notice, this list of conditions and the following disclaimer.
28 * 2. Redistributions in binary form must reproduce the above copyright
29 * notice, this list of conditions and the following disclaimer in the
30 * documentation and/or other materials provided with the distribution.
31 * 3. All advertising materials mentioning features or use of this software
32 * must display the following acknowledgement:
33 * "This product includes cryptographic software written by
34 * Eric Young (eay@cryptsoft.com)"
35 * The word 'cryptographic' can be left out if the rouines from the library
36 * being used are not cryptographic related :-).
37 * 4. If you include any Windows specific code (or a derivative thereof) from
38 * the apps directory (application code) you must include an acknowledgement:
39 * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
41 * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
42 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
43 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
44 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
45 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
46 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
47 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
49 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
50 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
53 * The licence and distribution terms for any publically available version or
54 * derivative of this code cannot be changed. i.e. this code cannot simply be
55 * copied and put under another distribution licence
56 * [including the GNU Public Licence.]
65 /* With IPv6, it looks like Digital has mixed up the proper order of
66 recursive header file inclusion, resulting in the compiler complaining
67 that u_int isn't defined, but only if _POSIX_C_SOURCE is defined, which
68 is needed to have fileno() declared correctly... So let's define u_int */
69 #if defined(OPENSSL_SYS_VMS_DECC) && !defined(__U_INT)
71 typedef unsigned int u_int;
80 #include <openssl/ssl.h>
88 #ifndef OPENSSL_NO_SOCK
90 #if defined(OPENSSL_SYS_NETWARE) && defined(NETWARE_BSDSOCK)
94 static struct hostent *GetHostByName(const char *name);
95 #if defined(OPENSSL_SYS_WINDOWS) || (defined(OPENSSL_SYS_NETWARE) && !defined(NETWARE_BSDSOCK))
96 static void ssl_sock_cleanup(void);
98 static int ssl_sock_init(void);
99 static int init_client_ip(int *sock, const unsigned char ip[4], int port,
101 static int init_server(int *sock, int port, int type);
102 static int init_server_long(int *sock, int port,char *ip, int type);
103 static int do_accept(int acc_sock, int *sock, char **host);
104 static int host_ip(const char *str, unsigned char ip[4]);
106 static int init_server_unix(int *sock, const char *path);
107 static int do_accept_unix(int acc_sock, int *sock);
110 #ifdef OPENSSL_SYS_WIN16
111 #define SOCKET_PROTOCOL 0 /* more microsoft stupidity */
113 #define SOCKET_PROTOCOL IPPROTO_TCP
116 #if defined(OPENSSL_SYS_NETWARE) && !defined(NETWARE_BSDSOCK)
117 static int wsa_init_done=0;
120 #ifdef OPENSSL_SYS_WINDOWS
121 static struct WSAData wsa_state;
122 static int wsa_init_done=0;
124 #ifdef OPENSSL_SYS_WIN16
125 static HWND topWnd=0;
126 static FARPROC lpTopWndProc=NULL;
127 static FARPROC lpTopHookProc=NULL;
128 extern HINSTANCE _hInstance; /* nice global CRT provides */
130 static LONG FAR PASCAL topHookProc(HWND hwnd, UINT message, WPARAM wParam,
139 SetWindowLong(topWnd,GWL_WNDPROC,(LONG)lpTopWndProc);
144 return CallWindowProc(lpTopWndProc,hwnd,message,wParam,lParam);
147 static BOOL CALLBACK enumproc(HWND hwnd,LPARAM lParam)
153 #endif /* OPENSSL_SYS_WIN32 */
154 #endif /* OPENSSL_SYS_WINDOWS */
156 #ifdef OPENSSL_SYS_WINDOWS
157 static void ssl_sock_cleanup(void)
162 #ifndef OPENSSL_SYS_WINCE
163 WSACancelBlockingCall();
168 #elif defined(OPENSSL_SYS_NETWARE) && !defined(NETWARE_BSDSOCK)
169 static void sock_cleanup(void)
179 static int ssl_sock_init(void)
182 extern int _watt_do_exit;
186 #elif defined(OPENSSL_SYS_WINDOWS)
192 signal(SIGINT,(void (*)(int))ssl_sock_cleanup);
195 memset(&wsa_state,0,sizeof(wsa_state));
196 if (WSAStartup(0x0101,&wsa_state)!=0)
198 err=WSAGetLastError();
199 BIO_printf(bio_err,"unable to start WINSOCK, error code=%d\n",err);
203 #ifdef OPENSSL_SYS_WIN16
204 EnumTaskWindows(GetCurrentTask(),enumproc,0L);
205 lpTopWndProc=(FARPROC)GetWindowLong(topWnd,GWL_WNDPROC);
206 lpTopHookProc=MakeProcInstance((FARPROC)topHookProc,_hInstance);
208 SetWindowLong(topWnd,GWL_WNDPROC,(LONG)lpTopHookProc);
209 #endif /* OPENSSL_SYS_WIN16 */
211 #elif defined(OPENSSL_SYS_NETWARE) && !defined(NETWARE_BSDSOCK)
220 signal(SIGINT,(void (*)(int))sock_cleanup);
224 wVerReq = MAKEWORD( 2, 0 );
225 err = WSAStartup(wVerReq,&wsaData);
228 BIO_printf(bio_err,"unable to start WINSOCK2, error code=%d\n",err);
232 #endif /* OPENSSL_SYS_WINDOWS */
236 int init_client(int *sock, const char *host, int port, int type)
240 ip[0] = ip[1] = ip[2] = ip[3] = 0;
241 if (!host_ip(host,&(ip[0])))
243 return init_client_ip(sock,ip,port,type);
246 static int init_client_ip(int *sock, const unsigned char ip[4], int port,
250 struct sockaddr_in them;
253 if (!ssl_sock_init()) return(0);
255 memset((char *)&them,0,sizeof(them));
256 them.sin_family=AF_INET;
257 them.sin_port=htons((unsigned short)port);
259 ((unsigned long)ip[0]<<24L)|
260 ((unsigned long)ip[1]<<16L)|
261 ((unsigned long)ip[2]<< 8L)|
262 ((unsigned long)ip[3]);
263 them.sin_addr.s_addr=htonl(addr);
265 if (type == SOCK_STREAM)
266 s=socket(AF_INET,SOCK_STREAM,SOCKET_PROTOCOL);
267 else /* ( type == SOCK_DGRAM) */
268 s=socket(AF_INET,SOCK_DGRAM,IPPROTO_UDP);
270 if (s == INVALID_SOCKET) { perror("socket"); return(0); }
272 #if defined(SO_KEEPALIVE)
273 if (type == SOCK_STREAM)
276 i=setsockopt(s,SOL_SOCKET,SO_KEEPALIVE,(char *)&i,sizeof(i));
277 if (i < 0) { closesocket(s); perror("keepalive"); return(0); }
281 if (connect(s,(struct sockaddr *)&them,sizeof(them)) == -1)
282 { closesocket(s); perror("connect"); return(0); }
288 int init_client_unix(int *sock, const char *server)
290 struct sockaddr_un them;
293 if (strlen(server) > (UNIX_PATH_MAX + 1)) return(0);
294 if (!ssl_sock_init()) return(0);
296 s=socket(AF_UNIX, SOCK_STREAM, 0);
297 if (s == INVALID_SOCKET) { perror("socket"); return(0); }
299 memset((char *)&them,0,sizeof(them));
300 them.sun_family=AF_UNIX;
301 strcpy(them.sun_path, server);
303 if (connect(s, (struct sockaddr *)&them, sizeof(them)) == -1)
304 { closesocket(s); perror("connect"); return(0); }
310 int do_server(int port, int type, int *ret,
311 int (*cb)(char *hostname, int s, int stype, unsigned char *context),
312 unsigned char *context, int naccept)
316 int accept_socket = 0;
319 if (!init_server(&accept_socket,port,type)) return(0);
328 if (type==SOCK_STREAM)
330 #ifdef OPENSSL_SSL_DEBUG_BROKEN_PROTOCOL
331 if (do_accept(accept_socket,&sock,NULL) == 0)
333 if (do_accept(accept_socket,&sock,&name) == 0)
336 SHUTDOWN(accept_socket);
341 sock = accept_socket;
342 i=(*cb)(name,sock, type, context);
343 if (name != NULL) OPENSSL_free(name);
344 if (type==SOCK_STREAM)
348 if (i < 0 || naccept == 0)
350 SHUTDOWN2(accept_socket);
357 int do_server_unix(const char *path, int *ret,
358 int (*cb)(char *hostname, int s, int stype, unsigned char *context),
359 unsigned char *context, int naccept)
362 int accept_socket = 0;
365 if (!init_server_unix(&accept_socket, path)) return(0);
371 if (do_accept_unix(accept_socket, &sock) == 0)
373 SHUTDOWN(accept_socket);
377 i=(*cb)(NULL, sock, 0, context);
381 if (i < 0 || naccept == 0)
383 SHUTDOWN2(accept_socket);
393 static int init_server_long(int *sock, int port, char *ip, int type)
396 struct sockaddr_in server;
399 if (!ssl_sock_init()) return(0);
401 memset((char *)&server,0,sizeof(server));
402 server.sin_family=AF_INET;
403 server.sin_port=htons((unsigned short)port);
405 server.sin_addr.s_addr=INADDR_ANY;
407 /* Added for T3E, address-of fails on bit field (beckman@acl.lanl.gov) */
408 #ifndef BIT_FIELD_LIMITS
409 memcpy(&server.sin_addr.s_addr,ip,4);
411 memcpy(&server.sin_addr,ip,4);
414 if (type == SOCK_STREAM)
415 s=socket(AF_INET,SOCK_STREAM,SOCKET_PROTOCOL);
416 else /* type == SOCK_DGRAM */
417 s=socket(AF_INET, SOCK_DGRAM,IPPROTO_UDP);
419 if (s == INVALID_SOCKET) goto err;
420 #if defined SOL_SOCKET && defined SO_REUSEADDR
423 setsockopt(s, SOL_SOCKET, SO_REUSEADDR,
424 (void *) &j, sizeof j);
427 if (bind(s,(struct sockaddr *)&server,sizeof(server)) == -1)
429 #ifndef OPENSSL_SYS_WINDOWS
434 /* Make it 128 for linux */
435 if (type==SOCK_STREAM && listen(s,128) == -1) goto err;
439 if ((ret == 0) && (s != -1))
446 static int init_server(int *sock, int port, int type)
448 return(init_server_long(sock, port, NULL, type));
452 static int init_server_unix(int *sock, const char *path)
455 struct sockaddr_un server;
458 if (strlen(path) > (UNIX_PATH_MAX + 1)) return(0);
459 if (!ssl_sock_init()) return(0);
461 s=socket(AF_UNIX, SOCK_STREAM, 0);
462 if (s == INVALID_SOCKET) goto err;
464 memset((char *)&server,0,sizeof(server));
465 server.sun_family=AF_UNIX;
466 strcpy(server.sun_path, path);
468 if (bind(s, (struct sockaddr *)&server, sizeof(server)) == -1)
470 #ifndef OPENSSL_SYS_WINDOWS
475 /* Make it 128 for linux */
476 if (listen(s,128) == -1)
478 #ifndef OPENSSL_SYS_WINDOWS
487 if ((ret == 0) && (s != -1))
495 static int do_accept(int acc_sock, int *sock, char **host)
498 struct hostent *h1,*h2;
499 static struct sockaddr_in from;
501 /* struct linger ling; */
503 if (!ssl_sock_init()) return(0);
505 #ifndef OPENSSL_SYS_WINDOWS
509 memset((char *)&from,0,sizeof(from));
511 /* Note: under VMS with SOCKETSHR the fourth parameter is currently
512 * of type (int *) whereas under other systems it is (void *) if
513 * you don't have a cast it will choke the compiler: if you do
514 * have a cast then you can either go for (int *) or (void *).
516 ret=accept(acc_sock,(struct sockaddr *)&from,(void *)&len);
517 if (ret == INVALID_SOCKET)
519 #if defined(OPENSSL_SYS_WINDOWS) || (defined(OPENSSL_SYS_NETWARE) && !defined(NETWARE_BSDSOCK))
522 BIO_printf(bio_err,"accept error %d\n",i);
526 /*check_timeout(); */
529 fprintf(stderr,"errno=%d ",errno);
538 i=setsockopt(ret,SOL_SOCKET,SO_LINGER,(char *)&ling,sizeof(ling));
539 if (i < 0) { perror("linger"); return(0); }
541 i=setsockopt(ret,SOL_SOCKET,SO_KEEPALIVE,(char *)&i,sizeof(i));
542 if (i < 0) { perror("keepalive"); return(0); }
545 if (host == NULL) goto end;
546 #ifndef BIT_FIELD_LIMITS
547 /* I should use WSAAsyncGetHostByName() under windows */
548 h1=gethostbyaddr((char *)&from.sin_addr.s_addr,
549 sizeof(from.sin_addr.s_addr),AF_INET);
551 h1=gethostbyaddr((char *)&from.sin_addr,
552 sizeof(struct in_addr),AF_INET);
556 BIO_printf(bio_err,"bad gethostbyaddr\n");
562 if ((*host=(char *)OPENSSL_malloc(strlen(h1->h_name)+1)) == NULL)
564 perror("OPENSSL_malloc");
568 BUF_strlcpy(*host,h1->h_name,strlen(h1->h_name)+1);
570 h2=GetHostByName(*host);
573 BIO_printf(bio_err,"gethostbyname failure\n");
577 if (h2->h_addrtype != AF_INET)
579 BIO_printf(bio_err,"gethostbyname addr is not AF_INET\n");
590 static int do_accept_unix(int acc_sock, int *sock)
594 if (!ssl_sock_init()) return(0);
597 ret=accept(acc_sock, NULL, NULL);
598 if (ret == INVALID_SOCKET)
602 /*check_timeout(); */
605 fprintf(stderr,"errno=%d ",errno);
615 int extract_host_port(char *str, char **host_ptr, unsigned char *ip,
624 BIO_printf(bio_err,"no port defined\n");
629 if ((ip != NULL) && !host_ip(str,ip))
631 if (host_ptr != NULL) *host_ptr=h;
633 if (!extract_port(p,port_ptr))
640 static int host_ip(const char *str, unsigned char ip[4])
645 if (sscanf(str,"%u.%u.%u.%u",&(in[0]),&(in[1]),&(in[2]),&(in[3])) == 4)
650 BIO_printf(bio_err,"invalid IP address\n");
659 { /* do a gethostbyname */
662 if (!ssl_sock_init()) return(0);
664 he=GetHostByName(str);
667 BIO_printf(bio_err,"gethostbyname failure\n");
670 /* cast to short because of win16 winsock definition */
671 if ((short)he->h_addrtype != AF_INET)
673 BIO_printf(bio_err,"gethostbyname addr is not AF_INET\n");
676 ip[0]=he->h_addr_list[0][0];
677 ip[1]=he->h_addr_list[0][1];
678 ip[2]=he->h_addr_list[0][2];
679 ip[3]=he->h_addr_list[0][3];
686 int extract_port(const char *str, short *port_ptr)
693 *port_ptr=(unsigned short)i;
696 s=getservbyname(str,"tcp");
699 BIO_printf(bio_err,"getservbyname failure for %s\n",str);
702 *port_ptr=ntohs((unsigned short)s->s_port);
708 static struct ghbn_cache_st
713 } ghbn_cache[GHBN_NUM];
715 static unsigned long ghbn_hits=0L;
716 static unsigned long ghbn_miss=0L;
718 static struct hostent *GetHostByName(const char *name)
722 unsigned long low= (unsigned long)-1;
724 for (i=0; i<GHBN_NUM; i++)
726 if (low > ghbn_cache[i].order)
728 low=ghbn_cache[i].order;
731 if (ghbn_cache[i].order > 0)
733 if (strncmp(name,ghbn_cache[i].name,128) == 0)
737 if (i == GHBN_NUM) /* no hit*/
740 ret=gethostbyname(name);
741 if (ret == NULL) return(NULL);
742 /* else add to cache */
743 if(strlen(name) < sizeof ghbn_cache[0].name)
745 strcpy(ghbn_cache[lowi].name,name);
746 memcpy((char *)&(ghbn_cache[lowi].ent),ret,sizeof(struct hostent));
747 ghbn_cache[lowi].order=ghbn_miss+ghbn_hits;
754 ret= &(ghbn_cache[i].ent);
755 ghbn_cache[i].order=ghbn_miss+ghbn_hits;